Rapid7

vulnerability

IBM AIX: java_apr2025_advisory (CVE-2024-10917): Vulnerability in java affects AIX

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Nov 11, 2024
Added
Apr 28, 2025
Modified
Mar 27, 2026

Description

In Eclipse OpenJ9 versions up to 0.47, the JNI function GetStringUTFLength may return an incorrect value which has wrapped around. From 0.48 the value is correct but may be truncated to include a smaller number of characters.

Solution

ibm-aix-java_apr2025_advisory
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.